Package Health

gguerin/saisie-heures

The package includes a README, tests, and a stable release, while the repository is not archived or deprecated. Its proprietary licensing, no commits for three months, and repository/package naming mismatch make long-term support and provenance uncertain.

Latest v1.9PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Repo commit activitydanger

The repository had no commits and no active maintainers during the last three months. Combined with the long release gap, this materially raises abandonment risk.

Dependency profilecaution

The package declares 43 runtime dependencies, including a substantial Symfony and application stack. This increases update and compatibility maintenance burden.

Licensecaution

The manifest declares a proprietary license, with no license file detected in the package or repository. This limits transparency and may restrict dependable reuse.

Lifecycle scriptscaution

The package runs post-install and post-update scripts, adding execution during dependency operations. The signal does not show that these scripts are unsafe, so this is a moderate review concern rather than a verdict.

Release historycaution

The package has four releases but none in the last 12 months; its latest release was about 15 months ago. This indicates a real maintenance and abandonment concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version *
ramsey/uuid
Version ^4.7
symfony/uid
Version 6.*
doctrine/orm
Version *
symfony/flex
Version *

Weekly Downloads

Info

Last Published
2 years ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform